CVE-2020-25185

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
21/11/2020
Last modified:
03/12/2020

Description

The affected product is vulnerable to five post-authentication buffer overflows, which may allow a logged in user to remotely execute arbitrary code on the IP150 (firmware versions 5.02.09).

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:paradox:ip150_firmware:5.02.09:*:*:*:*:*:*:*
cpe:2.3:h:paradox:ip150:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools